• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Secure WLAN with IPsec ?

IPsec
3
3
2.2k
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • G
    Gandalf
    last edited by Feb 6, 2007, 6:14 AM Feb 6, 2007, 4:44 AM

    Hi,

    I would like to secure my WLAN with IPsec, My setup:
    pfSense is directly connected to the Internet, it has 2 subnets LAN: 192.168.1.0/24 and DMZ: 192.168.2.0/24.
    On LAN I have a Linksys WRT45G connected as an Access Point (all firewall/DHCP etc disabled), I have WEP disabled (I don't see the point of having WEP while cracking it is so easy, and WAP sucks with linux), I only have MAC filtering ATM, I would like to use IPsec to be on the safe side, but I'm very Newbie at VPN tunneling etc…
    I have looked at http://edain.de/wlan_protection.html This tuto covers having a tunnel for each PC but not in general, isn't there a way to have a General tunnel for all Wifi connected devices that knows that Pre-shared key?? if not then how to do it for each client in pfSense, same as that tuto or is there a better way??

    Thanks

    1 Reply Last reply Reply Quote 0
    • H
      hoba
      last edited by Feb 6, 2007, 8:27 AM

      I suggest using WPA for your WLAN Clients. It's aes encrypted (like a vpn) and most wireless cards do the encryption in hardware so they won't require cpupower to get throughput.

      1 Reply Last reply Reply Quote 0
      • J
        jeroen234
        last edited by Feb 7, 2007, 1:43 PM

        or use the vpn ptpp server on youre pfsense server and the ptpp client on youre pc's

        1 Reply Last reply Reply Quote 0
        1 out of 3
        • First post
          1/3
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.